NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
Marksmt
Oct 11, 2016Aspirant
Migrating from UTM-25 to FVS336G
Hi I will soon be retiring an elderly UTM-25 which has several years of accumulated tweaks and changes installed on it to a brand new FVS336Gv3. This includes a couple of VPN links (one to an over...
JohnRo
Oct 11, 2016NETGEAR Employee Retired
Hello Marksmt,
Welcome to the community!
I haven't really seen one of these scripts to transfer, especially from UTM series. You know it is a big leap transferring config from a UTM to a regular VPN firewall since there are a ton of features that will be lost upon the transfer. I'll inquire this to our engineers and see if there is any.
Thanks,
Marksmt
Oct 12, 2016Aspirant
Thanks!
We have never used the UTM device functionally as anything over an above the features offered by the new unit. If there is a script which can migrate the bulk of the settings, leaving a few odds and ends to be tidied up that would be wonderful. Migrating VPN config and certs would be really useful.
I was looking at a hex dump of the backup and thinking that even a full/detailed config report of every setting might even help. I can't say I've noticed the option to dump the config in human-readable format on the UTM. Failing that, I guess it will be a few hours hunting through all of the screens, jotting down settings, checking then reprogramming everything into the new FWR.
Given the end of life this year for the UTM series I guess there might be a number of hard-pressed IT guys in the same boat :)
Regards
Mark
- JohnRoOct 13, 2016NETGEAR Employee Retired
Hi Marksmt,
I just got an information from our engineering. Unfortunately, we do not have any scripts or utilities to transfer configurations from UTMs to FVS series routers. As I have mentioned in my last post, they are two different router platforms since the UTM has a lot more features than the FVS series and there are also some features on the FVS that are not available on the UTM. The best thing to do is just to get a screenshot of the pages where there is configuration.
Thanks,
- DaneAOct 16, 2016NETGEAR Employee Retired
Hi Marksmt,
We’d greatly appreciate hearing your feedback letting us know if the information I’ve provided has helped resolve your concern or if you need further assistance. If ever your concern has been resolved, I encourage you to mark the appropriate reply as the “Accepted Solution” so others can be confident in benefiting from the solution. The NETGEAR Community looks forward to hearing from you and being a helpful resource in the future!
Regards,DaneA
NETGEAR Community Team
- MarksmtOct 19, 2016Aspirant
Hi,
I have followed the suggestion and hunted through all of the tabs and pages of the old router and printed off the config onto paper. I next plan to set up the router manually by following the printout configs.
If I had to do this to a number of routers I think I'd write myself a script to pull the config out using wget or some equivalent (I used this method to pull "non-extractable" config from a HASP licensing system).The only issue which might still be a problem would be whether or not the VPN certificates can be migrated but I may have to dig a bit deeper. Unfortunately, as with many IT managers, I'm having to do this migration whilst spinning ten other plates at the same time so a migration script which migrated just the basic features (firewall WAN IPs, WAN config, port service list, LAN, WAN and DMZ ports + DMZ config and maybe VPN config + certs) would be a really useful time-saver. My guess is that this would be sufficient to help out those migrating from EOL UTM-25s to alternative basic-spec Netgear FWRs. I'm not interested in migrating advanced features and this wouldn't be possible anyway. Just the basic/standard stuff to get the router up and running and impersonate the old one and avoid loss of service.
I noted whilst digging that the certs are viewable in plaintext embedded within the binary backup file from the UTM-25. I'm not sure if they would be usable and will need to investigate further when I get a moment.
As soon as I get a pause between new works being dumped on my desk and a slot for site outage I'll have a look at setting this up. In the meantime, feel free to close the thead.
Many thanks
MS- JohnRoOct 19, 2016NETGEAR Employee Retired
Hi Marksmt,
This thread will be open unless a solution has been marked, it will close automatically after a few weeks inactivity. Please share your solution with us, I know other IT managers will be interested.
Thank you,
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!